Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-0377

Опубликовано: 02 июл. 2017
Источник: debian
EPSS Низкий

Описание

Tor 0.3.x before 0.3.0.9 has a guard-selection algorithm that only considers the exit relay (not the exit relay's family), which might allow remote attackers to defeat intended anonymity properties by leveraging the existence of large families.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
tornot-affectedpackage

Примечания

  • https://trac.torproject.org/projects/tor/ticket/22753

  • https://blog.torproject.org/blog/tor-0309-released-security-update-clients

EPSS

Процентиль: 84%
0.02446
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 9 лет назад

Tor 0.3.x before 0.3.0.9 has a guard-selection algorithm that only considers the exit relay (not the exit relay's family), which might allow remote attackers to defeat intended anonymity properties by leveraging the existence of large families.

CVSS3: 7.5
nvd
около 9 лет назад

Tor 0.3.x before 0.3.0.9 has a guard-selection algorithm that only considers the exit relay (not the exit relay's family), which might allow remote attackers to defeat intended anonymity properties by leveraging the existence of large families.

CVSS3: 7.5
github
больше 4 лет назад

Tor 0.3.x before 0.3.0.9 has a guard-selection algorithm that only considers the exit relay (not the exit relay's family), which might allow remote attackers to defeat intended anonymity properties by leveraging the existence of large families.

EPSS

Процентиль: 84%
0.02446
Низкий